Microweber is a drag and drop website builder and a powerful next generation CMS. Microweber versions 1.2.15 and prior are vulnerable to cross-site scripting. This could lead to injection of arbitrary JaveScript code, defacement of a page, or stealing cookies. A patch is available on the master branch of Microweber's GitHub repository.
{
"github_reviewed_at": "2022-05-05T21:08:06Z",
"nvd_published_at": "2022-05-04T09:15:00Z",
"github_reviewed": true,
"cwe_ids": [
"CWE-79"
],
"severity": "MODERATE"
}